Bug 234155 - Redundant selinux functionality
Redundant selinux functionality
Status: CLOSED RAWHIDE
Product: Fedora
Classification: Fedora
Component: system-config-securitylevel (Show other bugs)
rawhide
All Linux
medium Severity medium
: ---
: ---
Assigned To: Thomas Woerner
:
Depends On:
Blocks: FC7Target
  Show dependency treegraph
 
Reported: 2007-03-27 11:02 EDT by Matthias Clasen
Modified: 2007-11-30 17:12 EST (History)
3 users (show)

See Also:
Fixed In Version:
Doc Type: Bug Fix
Doc Text:
Story Points: ---
Clone Of:
Environment:
Last Closed: 2007-09-10 07:26:51 EDT
Type: ---
Regression: ---
Mount Type: ---
Documentation: ---
CRM:
Verified Versions:
Category: ---
oVirt Team: ---
RHEL 7.3 requirements from Atomic Host:
Cloudforms Team: ---


Attachments (Terms of Use)

  None (edit)
Description Matthias Clasen 2007-03-27 11:02:24 EDT
We noticed that we have 3 selinux tools in the system > administration menu
now:

Firewall and SELinux
SELinux Management
SELinux Troubleshooter

The SELinux functionality in system-config-securitylevel is very limited
and totally redundant with what SELinux Management offers, so we think it 
Would be to remove the SELinux aspects from s-c-s and make it just a firewall
configuration tool. The menu entry would then just be "Firewall"
Comment 1 Matthew Miller 2007-04-10 12:28:41 EDT
Fedora 7 test bugs should be filed against "devel", not against test1/2/3. This
isn't obvious, I know. Moving this report so it isn't lost.

This is a bulk message -- I apologize if this was actually meant to be targeted
against a different release. If so, please fix or let me know. Thanks.
Comment 2 Rahul Sundaram 2007-04-27 22:04:03 EDT
system-config-selinux is not available as a bugzilla component so I am adding a
comment here as the original report is also closely UI related. Hope that's ok. 

Running system-config-selinux shows the title as "system-config-selinux.py"
instead of something that matches the menu entry like "SELinux Administration"
or atleast "system-config-selinux". 
Comment 3 Daniel Walsh 2007-04-30 09:02:49 EDT
Fixed title in policycoreutils-2.0.14-2

The only SELinux functionality left in securitylevel is for turning on or off
SELinux.
Comment 4 Thomas Woerner 2007-07-30 11:54:03 EDT
There will be a new configuration tool for the firewall soon:
system-config-firewall.

Please have a look at: http://people.redhat.com/twoerner/system-config/
Comment 5 Daniel Walsh 2007-07-31 10:01:24 EDT
The only reason there is any SELinux in the old tool at all at this time was for
firstboot.  So as long as firstboot has a way to disable,permissive,enforcing
SELinux then this is ok.
Comment 6 Chris Lumens 2007-07-31 10:33:45 EDT
I'm looking at removing this panel from firstboot.  Ideally, we'd like people to
have SELinux enabled and enforcing by default.  Right now, the screen in SELinux
doesn't make sense to a lot of people and advertises a way for people to easily
just turn off a main part of the security features of their system.
Comment 7 Thomas Woerner 2007-09-10 07:26:51 EDT
Fixed in system-config-firewall, which replaces system-config-securitylevel.

Note You need to log in before you can comment on or make changes to this bug.